VYPR

Verlihub

by Verlihub Project

CVEs (2)

  • CVE-2008-5705Dec 22, 2008
    risk 0.04cvss epss 0.08

    The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlier, when user triggers are enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in an argument.

  • CVE-2008-5706Dec 22, 2008
    risk 0.03cvss epss 0.00

    The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the /tmp/trigger.tmp temporary file.